Intelligent CISO Issue 65 | Page 64

The language used within cybersecurity adds a level of complexity as it poses a barrier between CISOs and business executives .
BUSINESS SURVEILLANCE

The language used within cybersecurity adds a level of complexity as it poses a barrier between CISOs and business executives .

right system to integrate or support that tool , which leads to ‘ wasting ’ their money .
The current trend for cybersecurity is that organisations want to do more with less and make the most of the investments they ’ ve already made .
We need to reframe their thinking . Effective cybersecurity posture is ultimately based on the business ’ risk at a higher level and any decision should cascade down from there . Cybersecurity is not actually that complex and there are simple steps they can take to make it work effectively for them and the business .
Making cybersecurity effective , not complex
Organisations need to take a holistic approach and review their overall risk before working their way down to tooling . Most executives are doing the opposite by buying specific tooling and aligning the business to that . To a degree it helps to temporarily mitigate some of the risks but it ’ s not the right approach . This is why we need to break down each step clearly to the organisation ’ s business executives .
The first step we always ask companies to make is around their asset management . Many companies
64 www . intelligentciso . com